[SECURITY] Fedora Core 1 Update: ethereal-0.10.3-0.1.1

Phil Knirsch pknirsch at redhat.com
Thu Jun 3 16:00:41 UTC 2004


---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2004-152
2004-06-03
---------------------------------------------------------------------

Product     : Fedora Core 1
Name        : ethereal
Version     : 0.10.3
Release     : 0.1.1
Summary     : Network traffic analyzer
Description :
Ethereal is a network traffic analyzer for Unix-ish operating systems.

This package lays base for libpcap, a packet capture and filtering
library, contains command-line utilities, contains plugins and
documentation for ethereal. A graphical user interface is packaged
separately to GTK+ package.

---------------------------------------------------------------------
Update Information:

  Issues have been discovered in the following protocol dissectors:

     * A SIP packet could make Ethereal crash under specific conditions, 
as described in the following message:
       http://www.ethereal.com/lists/ethereal-users/200405/msg00018.html
       (0.10.3).
     * The AIM dissector could throw an assertion, causing Ethereal to 
terminate abnormally (0.10.3).
     * It was possible for the SPNEGO dissector to dereference a null 
pointer, causing a crash (0.9.8 to 0.10.3).
     * The MMSE dissector was susceptible to a buffer overflow. (0.10.1 
to 0.10.3).

All users of Ethereal are strongly encouraged to update to these latest 
packages.

---------------------------------------------------------------------
* Fri May 28 2004 Phil Knirsch <pknirsch at redhat.com> 0.10.3-0.1.1

- Updated to ethereal-0.10.3
- Included backported security fixes from ethereal-0.10.4

* Wed Mar 24 2004 Phil Knirsch <pknirsch at redhat.com> 0.10.2.20040324-0.1

- Another updated to CVS version to fix more security problems.

* Mon Mar 15 2004 Phil Knirsch <pknirsch at redhat.com> 0.10.2-0.1

- Update to latest upstream version 0.10.2.
- Make security errata.


---------------------------------------------------------------------
This update can be downloaded from:
   http://download.fedora.redhat.com/pub/fedora/linux/core/updates/1/

1025a0c7d6dbe9369a2353764ddbc7b9  SRPMS/ethereal-0.10.3-0.1.1.src.rpm
124a9a2914c592276bd0427009c7883c  i386/ethereal-0.10.3-0.1.1.i386.rpm
3ec831cf4eaddee5184ddd18796aedc3  i386/ethereal-gnome-0.10.3-0.1.1.i386.rpm
3504ec2a5dfd51cde2b1262644e5ccf0 
i386/debug/ethereal-debuginfo-0.10.3-0.1.1.i386.rpm
441e043616370ee4b13e81ca20094d61  x86_64/ethereal-0.10.3-0.1.1.x86_64.rpm
ad048fccfa453591c96f3dabc18c5f14 
x86_64/ethereal-gnome-0.10.3-0.1.1.x86_64.rpm
f89c1bf94f358917813352a0cd82b561 
x86_64/debug/ethereal-debuginfo-0.10.3-0.1.1.x86_64.rpm

This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------


-- 
Philipp Knirsch      | Tel.:  +49-711-96437-470
Development          | Fax.:  +49-711-96437-111
Red Hat GmbH         | Email: Phil Knirsch <phil at redhat.de>
Hauptstaetterstr. 58 | Web:   http://www.redhat.de/
D-70178 Stuttgart
Motd:  You're only jealous cos the little penguins are talking to me.





More information about the announce mailing list